Security Advisory

CVE-2019-9649

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-03-22 19:02:43
Last updated 2024-08-04 21:54:45
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in the SFTP Server component in Core FTP 2.0 Build 674. Using the MDTM FTP command, a remote attacker can use a directory traversal technique (..\..\) to browse outside the root directory to determine the existence of a file on the operating system, and its last modified date.